websecurity@lists.webappsec.org

The Web Security Mailing List

View all threads

nullcon Goa 2012 Final call for Paper/Events and First round of speakers

N
nullcon
Thu, Oct 27, 2011 2:53 PM

Hi All,

nullcon team is pleased to announce:

  • First round of speakers
  • JailBreak
  • Final Call for Events and Call for Papers for Goa 2012

First round of speakers:

  1. Charlie Miller - Breaking iOS Code Signing
  2. Atul Alex - Binary God: Custom Abstract Processor running a
    custom-written OS,the demo of the tools used to design the entire thing
    (Assembler,debugger & some others)
  3. Rahul Sasi - IVR Security: Internal Network Attacks via Phone Lines
  4. Andrew King - AV Bypass: Will demonstrate some ways in which current
    anti-virus fails. Releasing a SET Java payload replacement that uses JNI
    instead of execution to defeat AV in new and interesting ways.
  5. Gursev Kalra - CAPTCHAs for Fun and Profit: Highlights the general
    implementation flaws in CAPTCHA Image Creation, Implementation and
    Verification methods.
  6. Vivek Ramachandran - Wi-Fi Malware for Fun and Profit: This talks opens
    up a new dimension for the abuse of Wi-Fi. Will release tools which will
    demonstrate how Wi-Fi worms, backdoors and botnets can be written to
    leverage Wi-Fi in damaging new ways.
  7. Marc Bown - Forensics in Shared Hosting Environments. Releasing some
    tools to assist with forensics in shared hosting environments.

Looking forward to more interesting submissions for nullcon Goa 2012.

nullcon Goa JailBreak

Bored of conventional CTFs and hacker challenges?
Want that adrenaline rush?
Enroll for JailBreak. Two days and nights of torture, stress, exploitation,
coding and problem solving.

Details on how to register will be posted online on
http://www.nullcon.net


nullcon Goa Call For Events (CFE)

Want to be the talk of town?
Want to show off your special skills?
Be creative.
Anything innovative is welcome.

If your Event gets selected, a maximum of 2 complementary VIP passes will be
provided to you depending on your event.
Submit your proposal to cfp_at_nullcon.net , use the Subject: Event Tritiya

  • <Your_event_name>
    Email Body:
  1. Team members name
  2. Organization
  3. City, country
  4. Phone
  5. Event name
  6. Time duration (1 hr, 3 hrs, whole day?)
  7. Event details (including step by step information on how will you
    conduct the event)
  8. Why do you think the event is innovative and should be organized at
    nullcon?
  9. Have you ever conducted a similar event before this? If yes, please
    provide all the details including the response.

Hints:

  • Want to teach us how to assemble/disassemble a biometric device using
    home made stuff or how to make a jammer out of a radio/microwave etc :-),
    submit a proposal
  • Have a rock band? want to play at nullcon? submit your proposal.
  • We are already going to have a hell lot of CTFs during the con, so
    CTFs may get less attention, but anything innovative is still welcome.

nullcon Goa Call For Papers

Calling all  security ninjas

Its the time of the year when we welcome research done by the community as

paper submissions for nullcon. So, sip your coffee, dust your debuggers,
fire your tools, challenge your gray cells and shoot us an email.

Tracks:
—————

The track duration includes time for questions and answers (5-10 minutes).

Tracks:

  1. Business track (40 mins - 1 hr) comprises of talks focusing on the
    business aspects of security and hacking including research, tools,
    standards, policies and threat mitigation techniques. This track is
    specifically targeted at CXOs  and senior management level audience.

  2. Research track (1 hr) is a deep knowledge technical track that includes
    new research, tools, vulnerabilities, zero days or exploits.

  3. Technical track (30 mins - 1 hr)  comprises of known security issues,
    case
    studies, twist to an existing research, tool, vulnerability, exploit or
    research-in-progress.

  4. Desi Jugaad (1 hr) is our signature research track and includes any local
    Indian/Asian hacks.

Submission Topics:
———————————————

  1. One of the topics of interest to us is "Desi Jugaad"(Local Indian/Asian
    Hack) and has a separate track of its own. Submissions can be any kind of

local hacks that you have worked on (hints: electronic/mechanical meters,
automobile hacking, Hardware, mobile phones,  lock-picking, bypassing
procedures and processes, etc, Be creative  :-D)

  1. The topics pertaining to security and Hacking in the following
    domains(but not limited to):
  • Hardware Hacking(ex: RFID, Magnetic Strips, Card Readers, Mobile Devices,
    Electronic Devices)
  • Tools/exploits/Zero-days (non-commercial)
  • Programming/Software Development security and weaknesses
  • Network vulnerabilities.
  • Information Warfare
  • Malware, Botnets
  • Web attacks and application hacking
  • New attack vectors
  • Mobile malware, vulnerabilities, exploits, VOIP and Telecom
  • Virtualization security, hacking VMs, breaking out of VMS etc
  • Cloud security, threats and exploitation
  • Critical Infrastructure
  • Satellite hacking
  • Wireless hacking
  • Forensics

Submission Format:
———————————————

Email the Paper to: cfp_at_nullcon.net
Subject should be: CFP Tritiya <Paper Title>
Email Body:

  1. Name
  2. Handle
  3. Track (& Time required in case of Technical/Business track)
  4. Paper Title
  5. Country(and City) of residence
  6. Organization
  7. Contact no.
  8. Have you presented or submitted this paper at any other conference(s) or
    magazine(s)?
    Yes, No. If yes, where? and how this submission is different from the
    previous ones. Note that new research talks already given elsewhere or are
    due to be given elsewhere prior to nullcon will be considered as Technical
    track talks unless they consist of cutting edge and ground breaking
    technology, which is at the judgment of the review committee.
  9. Are you releasing an open source tool?
    Yes/No. (If yes, please include the source code for review)
  10. Are you releasing an exploit?
    Yes/No. (If yes, please include the source and vulnerability details for
    review)
  11. Are you releasing a new vulnerability/Zero-day?
    Yes/No. (If yes, please send us the details, including reproduction
    procedure, for review)
  12. Why do you think your paper is different/innovative (for all tracks) and
    how does it qualify as new work/research(for Research track only)?
  13. Are there any live demonstrations (These earn you good points during
    review)?
    Yes/No. (If Yes, how many? Also please explain each demo)
  14. Brief Profile ( <= 500 Words)
  15. Paper Abstract ( <= 3000 Words)
  16. Your Photo (attached)

NOTE:
—————

The Abstract should clearly mention the techniques and hacks in detail and
merely mentioning that it works will not help in understanding the research
to its full extent. nullcon is open knowledge/research sharing platform and

hence product/company marketing and pitches will be rejected. We request you
not to submit any product specific talk. Only the original authors should
submit their research and any submission from a third party will be
rejected.

Important Dates:
———————————————

CFP Closing Date:                      30th November 2011
Final speakers List online:          10th December 2011
Conference Dates:                      15th-18th Feb 2012

nullcon Delhi 2012

Get ready to witness the giants in the security Industry! For the very first
time nullcon now comes to Delhi - to showcase cutting edge security
technologies and discuss latest security threats among the Corporate world
and the Government sector. The event brings together thought leaders,
Corporates, Government and security professionals all under one roof. It
serves as a perfect platform to understand the current state of security and
bring forth innovative ideas during the talks, panel discussions and
networking events.

Tentative dates - October 2012


Speaker Benefits:
—————————————

For Research (and Desi Jugaad) Track

  1. Complementary Accommodation for 3 nights.
  2. Travel Reimbursement (Either actual or the below mentioned amounts,
    whichever is less)
  • North/South America to Goa (USD $800)
  • Africa/Europe/Australia to Goa (USD $600)
  • Asia to Goa (USD $500)
  • Anywhere in India to Goa (INR Rs.6000)
  1. Complementary conference pass.
  2. Invitation to Mehfil-E-Mausiqi (null networking party).

For Business Track

  1. Complementary Accommodation for 3 nights.
  2. Invitation to Mehfil-E-Mausiqi (null networking party)
  3. Complementary VIP conference pass.

For Technical Track

  1. Complementary VIP conference pass.
  2. Invitation to Mehfil-E-Mausiqi (null networking party)
  • Only one speaker will be eligible for the benefits in case there are two
    or more speakers for a talk.

** By submitting a paper and agreeing to talk at nullcon the speaker gives
null the right to post, publish, redistribute online and offline, soft
and/or hard copies of his/her presentation material including slides, source
code, detailed paper and the recorded video of the speaker and presentation.

Regards,
nullcon Team

Hi All, nullcon team is pleased to announce: - First round of speakers - JailBreak - Final Call for Events and Call for Papers for Goa 2012 First round of speakers: ------------------------------------ 1. Charlie Miller - Breaking iOS Code Signing 2. Atul Alex - Binary God: Custom Abstract Processor running a custom-written OS,the demo of the tools used to design the entire thing (Assembler,debugger & some others) 3. Rahul Sasi - IVR Security: Internal Network Attacks via Phone Lines 4. Andrew King - AV Bypass: Will demonstrate some ways in which current anti-virus fails. Releasing a SET Java payload replacement that uses JNI instead of execution to defeat AV in new and interesting ways. 5. Gursev Kalra - CAPTCHAs for Fun and Profit: Highlights the general implementation flaws in CAPTCHA Image Creation, Implementation and Verification methods. 6. Vivek Ramachandran - Wi-Fi Malware for Fun and Profit: This talks opens up a new dimension for the abuse of Wi-Fi. Will release tools which will demonstrate how Wi-Fi worms, backdoors and botnets can be written to leverage Wi-Fi in damaging new ways. 7. Marc Bown - Forensics in Shared Hosting Environments. Releasing some tools to assist with forensics in shared hosting environments. Looking forward to more interesting submissions for nullcon Goa 2012. nullcon Goa JailBreak -------------------------------- Bored of conventional CTFs and hacker challenges? Want that adrenaline rush? Enroll for JailBreak. Two days and nights of torture, stress, exploitation, coding and problem solving. Details on how to register will be posted online on http://www.nullcon.net _________________________________________________________________________________________ nullcon Goa Call For Events (CFE) -------------------------------------------------- Want to be the talk of town? Want to show off your special skills? Be creative. Anything innovative is welcome. If your Event gets selected, a maximum of 2 complementary VIP passes will be provided to you depending on your event. Submit your proposal to cfp_at_nullcon.net , use the Subject: Event Tritiya - <Your_event_name> Email Body: 1. Team members name 2. Organization 3. City, country 4. Phone 5. Event name 6. Time duration (1 hr, 3 hrs, whole day?) 7. Event details (including step by step information on how will you conduct the event) 8. Why do you think the event is innovative and should be organized at nullcon? 9. Have you ever conducted a similar event before this? If yes, please provide all the details including the response. Hints: - Want to teach us how to assemble/disassemble a biometric device using home made stuff or how to make a jammer out of a radio/microwave etc :-), submit a proposal - Have a rock band? want to play at nullcon? submit your proposal. - We are already going to have a hell lot of CTFs during the con, so CTFs may get less attention, but anything innovative is still welcome. ______________________________________________________________________________________________ nullcon Goa Call For Papers ----------------------------------------- Calling all security ninjas Its the time of the year when we welcome research done by the community as paper submissions for nullcon. So, sip your coffee, dust your debuggers, fire your tools, challenge your gray cells and shoot us an email. Tracks: ————— The track duration includes time for questions and answers (5-10 minutes). Tracks: 1. Business track (40 mins - 1 hr) comprises of talks focusing on the business aspects of security and hacking including research, tools, standards, policies and threat mitigation techniques. This track is specifically targeted at CXOs and senior management level audience. 2. Research track (1 hr) is a deep knowledge technical track that includes new research, tools, vulnerabilities, zero days or exploits. 3. Technical track (30 mins - 1 hr) comprises of known security issues, case studies, twist to an existing research, tool, vulnerability, exploit or research-in-progress. 4. Desi Jugaad (1 hr) is our signature research track and includes any local Indian/Asian hacks. Submission Topics: ——————————————— 1. One of the topics of interest to us is "Desi Jugaad"(Local Indian/Asian Hack) and has a separate track of its own. Submissions can be any kind of local hacks that you have worked on (hints: electronic/mechanical meters, automobile hacking, Hardware, mobile phones, lock-picking, bypassing procedures and processes, etc, Be creative :-D) 2. The topics pertaining to security and Hacking in the following domains(but not limited to): - Hardware Hacking(ex: RFID, Magnetic Strips, Card Readers, Mobile Devices, Electronic Devices) - Tools/exploits/Zero-days (non-commercial) - Programming/Software Development security and weaknesses - Network vulnerabilities. - Information Warfare - Malware, Botnets - Web attacks and application hacking - New attack vectors - Mobile malware, vulnerabilities, exploits, VOIP and Telecom - Virtualization security, hacking VMs, breaking out of VMS etc - Cloud security, threats and exploitation - Critical Infrastructure - Satellite hacking - Wireless hacking - Forensics Submission Format: ——————————————— Email the Paper to: cfp_at_nullcon.net Subject should be: CFP Tritiya <Paper Title> Email Body: 1. Name 2. Handle 3. Track (& Time required in case of Technical/Business track) 4. Paper Title 5. Country(and City) of residence 6. Organization 7. Contact no. 8. Have you presented or submitted this paper at any other conference(s) or magazine(s)? Yes, No. If yes, where? and how this submission is different from the previous ones. Note that new research talks already given elsewhere or are due to be given elsewhere prior to nullcon will be considered as Technical track talks unless they consist of cutting edge and ground breaking technology, which is at the judgment of the review committee. 9. Are you releasing an open source tool? Yes/No. (If yes, please include the source code for review) 10. Are you releasing an exploit? Yes/No. (If yes, please include the source and vulnerability details for review) 11. Are you releasing a new vulnerability/Zero-day? Yes/No. (If yes, please send us the details, including reproduction procedure, for review) 12. Why do you think your paper is different/innovative (for all tracks) and how does it qualify as new work/research(for Research track only)? 13. Are there any live demonstrations (These earn you good points during review)? Yes/No. (If Yes, how many? Also please explain each demo) 14. Brief Profile ( <= 500 Words) 15. Paper Abstract ( <= 3000 Words) 16. Your Photo (attached) NOTE: ————— The Abstract should clearly mention the techniques and hacks in detail and merely mentioning that it works will not help in understanding the research to its full extent. nullcon is open knowledge/research sharing platform and hence product/company marketing and pitches will be rejected. We request you not to submit any product specific talk. Only the original authors should submit their research and any submission from a third party will be rejected. Important Dates: ——————————————— CFP Closing Date: 30th November 2011 Final speakers List online: 10th December 2011 Conference Dates: 15th-18th Feb 2012 nullcon Delhi 2012 --------------------------- Get ready to witness the giants in the security Industry! For the very first time nullcon now comes to Delhi - to showcase cutting edge security technologies and discuss latest security threats among the Corporate world and the Government sector. The event brings together thought leaders, Corporates, Government and security professionals all under one roof. It serves as a perfect platform to understand the current state of security and bring forth innovative ideas during the talks, panel discussions and networking events. Tentative dates - October 2012 ______________________________ Speaker Benefits: ————————————— For Research (and Desi Jugaad) Track 1. Complementary Accommodation for 3 nights. 2. Travel Reimbursement (Either actual or the below mentioned amounts, whichever is less) - North/South America to Goa (USD $800) - Africa/Europe/Australia to Goa (USD $600) - Asia to Goa (USD $500) - Anywhere in India to Goa (INR Rs.6000) 3. Complementary conference pass. 4. Invitation to Mehfil-E-Mausiqi (null networking party). For Business Track 1. Complementary Accommodation for 3 nights. 2. Invitation to Mehfil-E-Mausiqi (null networking party) 3. Complementary VIP conference pass. For Technical Track 1. Complementary VIP conference pass. 2. Invitation to Mehfil-E-Mausiqi (null networking party) * Only one speaker will be eligible for the benefits in case there are two or more speakers for a talk. ** By submitting a paper and agreeing to talk at nullcon the speaker gives null the right to post, publish, redistribute online and offline, soft and/or hard copies of his/her presentation material including slides, source code, detailed paper and the recorded video of the speaker and presentation. Regards, nullcon Team